Fix for CVE-2009-2813.
authorJeremy Allison <jra@samba.org>
Mon, 28 Sep 2009 11:52:57 +0000 (13:52 +0200)
committerMichael Adam <obnox@samba.org>
Mon, 25 Jan 2010 14:17:27 +0000 (15:17 +0100)
commitaf1e35a613fbd4b8671bffbd848493911ef5a7f4
treeec0be5fed078acadfe5f966a17a2642378eca440
parent1025a2611688afbe8ce461e476989c7740dd2cb3
Fix for CVE-2009-2813.

===========================================================
== Subject:     Misconfigured /etc/passwd file may share folders unexpectedly
==
== CVE ID#:     CVE-2009-2813
==
== Versions:    All versions of Samba later than 3.0.11
==
== Summary:     If a user in /etc/passwd is misconfigured to have
==              an empty home directory then connecting to the home
==              share of this user will use the root of the filesystem
==              as the home directory.
===========================================================
source/param/loadparm.c
source/smbd/service.c